Cyber Security Engineer

New Yesterday

We are seeking a highly skilled Cyber Security Engineer with expertise in securing containerized applications and Red Hat Enterprise Linux (RHEL). Position is with a large DoD company located around Syracuse, NY. This role involves protecting the infrastructure from vulnerabilities and threats throughout their lifecycle, managing container orchestration within Kubernetes, and securing RHEL hosts and containers. The ideal candidate will automate deployment using tools such as Ansible, Kickstart, and Satellite, implement robust system hardening measures, ensure compliance with security standards, and automate patch management using Ansible and Red Hat Satellite. Responsibilities
Protect containerized applications and the underlying infrastructure from vulnerabilities and threats throughout their lifecycle, from build to runtime. Manage and secure container orchestration within Kubernetes. Secure RHEL hosts and containers utilizing dynamic firewall rules and APIs to support container migration in a live environment. Automate the deployment of Red Hat Enterprise Linux using tools such as Ansible, Kickstart, and Satellite. Implement robust system hardening measures, such as configuring secure boot, encrypting data at rest and in transit, and managing user authentication, authorization, and access. Automate patch management and vulnerability remediation using tools such as Ansible and Red Hat Satellite. Ensure compliance with security standards and regulations, utilizing NIST cybersecurity frameworks. Essential Skills
Strong understanding of cybersecurity principles, including RMF and NIST standards. Experience with system scanning and hardening using tools like ACAS/Tenable, SCC/SCAP. Proficiency in Linux operating systems and command-line interfaces, particularly RHEL. Experience with containerization and container hardening technologies such as Podman, Docker, and Kubernetes. Experience implementing information security solutions, including Data in Transit (DIT) and Data in Motion (DIM). Proficiency in bash scripting. Additional Skills & Qualifications
Familiarity with software lifecycles, CI/CD pipelines, and Git-based workflows. Experience implementing network segmentation using VLANs, VXLANs, etc., isolating network traffic. Configuring and managing routing protocols to ensure secure and efficient routing of traffic. Utilizing Quality of Service (QoS) policies in a containerized environment. Deploying Access Control Lists (ACLs) to filter and restrict traffic based on IP addresses, ports, and protocols. Designing and implementing management networks to securely manage and monitor network devices. Implementing secure network configurations, including configuring network interfaces, DNS, and NTP. Pay and Benefits
The pay range for this position is $45.00 - $70.00/hr. Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: • Medical, dental & vision • Critical Illness, Accident, and Hospital • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available • Life Insurance (Voluntary Life & AD&D for the employee and dependents) • Short and long-term disability • Health Spending Account (HSA) • Transportation benefits • Employee Assistance Program • Time Off/Leave (PTO, Vacation or Sick Leave) Workplace Type
This is a fully onsite position in Liverpool,NY. Application Deadline
This position is anticipated to close on Aug 26, 2025.
Location:
Liverpool